monitorapp-aicc/report

monitorapp-aicc/report

Releases0
Stars1
CVE-2020-14210

CVE History

CVEPublishedCVSS v3CVSS v2
8.1 HIGH9.3 HIGH

AIMANAGER before B115 on MONITORAPP Application Insight Web Application Firewall (AIWAF) devices with Manager 2.1.0 allows OS Command Injection because of missing input validation on one of the parameters of an HTTP request.

8.8 HIGH6.5 MEDIUM

AIMANAGER before B115 on MONITORAPP Application Insight Web Application Firewall (AIWAF) devices with Manager 2.1.0 has Improper Authentication. An attacker can gain administrative access by modifying the response to an authentication check request.

6.1 MEDIUM4.3 MEDIUM

Reflected Cross-Site Scripting (XSS) vulnerability in MONITORAPP WAF in which script can be executed when responding to Request URL information. It provides a function to response to Request URL information when blocking.